Security News > 2023 > April > ChatGPT Security: OpenAI's Bug Bounty Program Offers Up to $20,000 Prizes

OpenAI, the company behind the massively popular ChatGPT AI chatbot, has launched a bug bounty program in an attempt to ensure its systems are "Safe and secure."
Other prohibited categories are denial-of-service attacks, brute-forcing OpenAI APIs, and demonstrations that aim to destroy data or gain unauthorized access to sensitive information.
What's in scope are defects in OpenAI APIs, ChatGPT, third-party integrations, public exposure of OpenAI API keys, and any of the domains operated by the company.
The development comes in response to OpenAI patching account takeover and data exposure flaws in the platform, prompting Italian data protection regulators to take a closer look at the platform.
"OpenAI will have to draft and make available, on its website, an information notice describing the arrangements and logic of the data processing required for the operation of ChatGPT along with the rights afforded to data subjects," the Garante said.
As part of efforts to exercise data rights, both users and non-users of the service can request for "Rectification of their personal data" in cases where it's incorrectly generated by the service, or alternatively, erase the data if corrections are technically infeasible.
News URL
https://thehackernews.com/2023/04/chatgpt-security-openais-bug-bounty.html
Related news
- OpenAI tests watermarking for ChatGPT-4o Image Generation model (source)
- EncryptHub's dual life: Cybercriminal vs Windows bug-bounty researcher (source)
- OpenAI wants ChatGPT to know you over your life with new Memory update (source)
- OpenAI details ChatGPT-o3, o4-mini, o4-mini-high usage limits (source)
- OpenAI document explains when to use each ChatGPT model (source)
- Leak confirms OpenAI's ChatGPT will integrate MCP (source)
- OpenAI hints at a big upgrade for ChatGPT Operator Agent (source)
- OpenAI plans to ship an interesting ChatGPT product by 2026 (source)